ENSEMBLE ADVERSARIAL TRAINING BASED DEFENSE AGAINST ADVERSARIAL ATTACKS FOR MACHINE LEARNING-BASED INTRUSION DETECTION SYSTEM

被引:0
|
作者
Haroon, M. S. [1 ]
Ali, H. M. [1 ]
机构
[1] Shaheed Zulfikar Ali Bhutto Inst Sci & Technol SZA, Dept Comp Sci, Block 5 Clifton, Karachi 75600, Pakistan
关键词
adversarial attack; adversarial training; ensemble adversarial training; intrusion detection system; machine learning;
D O I
10.14311/NNW.2023.33.018
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
In this paper, a defence mechanism is proposed against adversarial attacks. The defence is based on an ensemble classifier that is adversarially trained. This is accomplished by generating adversarial attacks from four different attack methods, i.e., Jacobian-based saliency map attack (JSMA), projected gradient descent (PGD), momentum iterative method (MIM), and fast gradient signed method (FGSM). The adversarial examples are used to identify the robust machine-learning algorithms which eventually participate in the ensemble. The adversarial attacks are divided into seen and unseen attacks. To validate our work, the experiments are conducted using NSLKDD, UNSW-NB15 and CICIDS17 datasets. Grid search for the ensemble is used to optimise results. The parameter used for performance evaluations is accuracy, F1 score and AUC score. It is shown that an adversarially trained ensemble classifier produces better results.
引用
收藏
页码:317 / 336
页数:20
相关论文
共 50 条
  • [41] Evaluating and Improving Adversarial Robustness of Machine Learning-Based Network Intrusion Detectors
    Han, Dongqi
    Wang, Zhiliang
    Zhong, Ying
    Chen, Wenqi
    Yang, Jiahai
    Lu, Shuqiang
    Shi, Xingang
    Yin, Xia
    IEEE JOURNAL ON SELECTED AREAS IN COMMUNICATIONS, 2021, 39 (08) : 2632 - 2647
  • [42] Amplification methods to promote the attacks against machine learning-based intrusion detection systems
    Sicong Zhang
    Yang Xu
    Xinyu Zhang
    Xiaoyao Xie
    Applied Intelligence, 2024, 54 : 2941 - 2961
  • [43] Amplification methods to promote the attacks against machine learning-based intrusion detection systems
    Zhang, Sicong
    Xu, Yang
    Zhang, Xinyu
    Xie, Xiaoyao
    APPLIED INTELLIGENCE, 2024, 54 (04) : 2941 - 2961
  • [44] Adversarial Attacks on Machine Learning-Based State Estimation in Power Distribution Systems
    Afrin, Afia
    Ardakanian, Omid
    PROCEEDINGS OF THE 2023 THE 14TH ACM INTERNATIONAL CONFERENCE ON FUTURE ENERGY SYSTEMS, E-ENERGY 2023, 2023, : 446 - 458
  • [45] Two-phase Defense Against Poisoning Attacks on Federated Learning-based Intrusion Detection
    Lai, Yuan-Cheng
    Lin, Jheng-Yan
    Lin, Ying-Dar
    Hwang, Ren-Hung
    Lin, Po-Chin
    Wu, Hsiao-Kuang
    Chen, Chung-Kuan
    COMPUTERS & SECURITY, 2023, 129
  • [46] Towards realistic problem-space adversarial attacks against machine learning in network intrusion detection
    Catillo, Marta
    Pecchia, Antonio
    Repola, Antonio
    Villano, Umberto
    19TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY, AND SECURITY, ARES 2024, 2024,
  • [47] A Case Study with CICIDS2017 on the Robustness of Machine Learning against Adversarial Attacks in Intrusion Detection
    Catillo, Marta
    Del Vecchio, Andrea
    Pecchia, Antonio
    Villano, Umberto
    18TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY & SECURITY, ARES 2023, 2023,
  • [48] Primary User Adversarial Attacks on Deep Learning-Based Spectrum Sensing and the Defense Method
    Zheng, Shilian
    Ye, Linhui
    Wang, Xuanye
    Chen, Jinyin
    Zhou, Huaji
    Lou, Caiyi
    Zhao, Zhijin
    Yang, Xiaoniu
    CHINA COMMUNICATIONS, 2021, 18 (12) : 94 - 107
  • [49] A Wasserstein GAN-based Framework for Adversarial Attacks against Intrusion Detection Systems
    Cui, Fangda
    Ye, Qiang
    Kibenge-MacLeod, Patricia
    ICC 2023-IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS, 2023, : 3187 - 3192
  • [50] Primary User Adversarial Attacks on Deep Learning-Based Spectrum Sensing and the Defense Method
    Shilian Zheng
    Linhui Ye
    Xuanye Wang
    Jinyin Chen
    Huaji Zhou
    Caiyi Lou
    Zhijin Zhao
    Xiaoniu Yang
    ChinaCommunications, 2021, 18 (12) : 94 - 107